Forms Portal — Cross-Department Field-Exposure Matrix¶
Classification: CONFIDENTIAL — Internal Use Only
Document:governance/forms-field-exposure-matrix.md· v1.0 · GPUS-IT
GENERATED — do not hand-edit. Regenerate withpython3 scripts/gen-field-exposure-matrix.py.
Each multi-queue form fans a submission out to several destinations, each rendering its own template (2.5(d) per-action model). The template is therefore the per-queue access boundary: a field a template renders is a field that queue's recipients see. This matrix documents, for every multi-template form, which sensitive fields each queue's template exposes — and flags any HR-scoped field reaching a non-HR queue (a cross-department leak).
Field classes: COMP (compensation), GRANT, BENEFIT, EMP-TERMS (union/FLSA/mgmt status), PROTECTED-CLASS (EEO), HR-ONLY. These must stay in HR-routed templates. COST and PERSONAL (home address / personal phone) are shown but operationally permitted to IT/Facilities (equipment, desk).
✅ No cross-department leaks¶
No COMP / GRANT / BENEFIT / EMP-TERMS / PROTECTED-CLASS / HR-ONLY field is rendered by any template routed to a non-HR queue.
Employee Termination Notification¶
employee-termination-notification.yaml
- HR Termination Template (HR) → EM:gpus-people@greenpeace.org, HF:92
- IT Termination Template (non-HR) → HF:81, HF:85, HF:96, EM:gpus-it-accounts@greenpeace.org, gpus-data-request@greenpeace.org
- Facilities Termination Template (non-HR) → EM:gpus-facilities@greenpeace.org, gpus-finance-support@greenpeace.org, HF:100
| sensitive field | class | HR Termination Template | IT Termination Template | Facilities Termination Template |
|---|---|---|---|---|
CostCenter |
COST | ✅ | ✅ | ✅ |
TerminationCodes |
HR-ONLY | ✅ | · | · |
PersonalEmail |
PERSONAL | ✅ | · | · |
New Employee Notification¶
new-employee-notification.yaml
- HR New Employee Template (HR) → EM:gpus-people@greenpeace.org, HF:92
- IT New Employee Template (non-HR) → EM:gpus-it-accounts@greenpeace.org, HF:81
- General New Employee Template (non-HR) → EM:gpus-it-accounts@greenpeace.org, gpus-facilities@greenpeace.org, HF:100, HF:96, HF:85
| sensitive field | class | HR New Employee Template | IT New Employee Template | General New Employee Template |
|---|---|---|---|---|
AdditionalPTO |
BENEFIT | ✅ | · | · |
Insurance |
BENEFIT | ✅ | · | · |
PaidPTO |
BENEFIT | ✅ | · | · |
HourlyRate |
COMP | ✅ | · | · |
PayrollCostCente |
COMP | ✅ | · | · |
Payscale |
COMP | ✅ | · | · |
Salary |
COMP | ✅ | · | · |
SalaryBand |
COMP | ✅ | · | · |
TimeApproval |
COMP | ✅ | · | · |
ProjectCode |
COST | ✅ | · | · |
BargainType |
EMP-TERMS | ✅ | · | · |
ExemptType |
EMP-TERMS | ✅ | · | · |
MgmtPosition |
EMP-TERMS | ✅ | · | · |
GPFund |
GRANT | ✅ | · | · |
GPInc |
GRANT | ✅ | · | · |
NameOfTheGrant |
GRANT | ✅ | · | · |
MailingAddress |
PERSONAL | ✅ | ✅ | ✅ |
PersonalNumber |
PERSONAL | ✅ | ✅ | ✅ |
EEO1 |
PROTECTED-CLASS | ✅ | · | · |
Rate/Position Change Notification¶
rate-position-change-notification.yaml
- IT Position Change Template (non-HR) → HF:81, HF:96, EM:gpus-it-accounts@greenpeace.org
- HR Position Change Template (HR) → HF:92, EM:gpus-people@greenpeace.org
| sensitive field | class | IT Position Change Template | HR Position Change Template |
|---|---|---|---|
NewHourlyRate |
COMP | · | ✅ |
NewSalary |
COMP | · | ✅ |
PayScale |
COMP | · | ✅ |
PayrollApproval |
COMP | · | ✅ |
SalaryBand |
COMP | · | ✅ |
CostCenter |
COST | ✅ | ✅ |
ProjectCode |
COST | · | ✅ |
BargainType |
EMP-TERMS | · | ✅ |
ExemptStatus |
EMP-TERMS | · | ✅ |
Mgmtposition |
EMP-TERMS | · | ✅ |
GPFund |
GRANT | · | ✅ |
GPInc |
GRANT | · | ✅ |
EEO1 |
PROTECTED-CLASS | · | ✅ |